NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
56239  CVE-2007-4108  SQL injection vulnerability in sign_in.aspx in WebEvents (Online Event Registration Template) allows remote attackers to execute arbitrary SQL commands via the Password parameter.    7.5  High  2017-01-07  2008-09-05  View
57007  CVE-2007-4917  Cross-site scripting (XSS) vulnerability in tracking.php in PHP-Stats 0.1.9.2 allows remote attackers to inject arbitrary web script or HTML via the ip parameter in an online action, a different vector than CVE-2007-4334.    4.3  Medium  2017-01-07  2008-09-05  View
57519  CVE-2007-5454  Directory traversal vulnerability in index.php in PHP File Sharing System 1.5.1 allows remote attackers to list or create arbitrary directories, or delete arbitrary files, as demonstrated by listing directories via a .. (dot dot) in the cam parameter.    7.5  High  2017-01-07  2008-09-05  View
58287  CVE-2007-6292  SQL injection vulnerability in leggi_commenti.asp in MWOpen 1.4 and earlier allows remote attackers to execute arbitrary SQL commands via the id parameter.    7.5  High  2017-01-07  2008-09-05  View
59055  CVE-2006-0315  index.php in EZDatabase before 2.1.2 does not properly cleanse the p parameter before constructing and including a .php filename, which allows remote attackers to conduct directory traversal attacks, and produces resultant cross-site scripting (XSS) and path disclosure.    5.8  Medium  2016-12-20  2008-09-05  View

Page 1172 of 17672, showing 5 records out of 88360 total, starting on record 5856, ending on 5860

Actions